`GET /v1/orgs/{org}/advisories` (DAWG-288).
const url = 'https://api.updawg.net/v1/orgs/example/advisories';const options = {method: 'GET'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://api.updawg.net/v1/orgs/example/advisoriesParameters
Section titled “Parameters”Path Parameters
Section titled “Path Parameters”Organization slug.
Query Parameters
Section titled “Query Parameters”Repeatable: none, low, medium, high, critical, or unrated for those nobody rated.
true: only advisories with a CVE in CISA’s Known Exploited Vulnerabilities.
true: only advisories some exposed host has no available fix for.
Responses
Section titled “Responses”Every advisory affecting at least one host, known-exploited first, then worst, then widest.
object
object
USN-7012-1, DSA-6335-1, RLSA-2026:67165, …
When the earliest of those exposures was first seen.
Of those, the ones an available update fixes.
Hosts with an installed version it affects.
A CVE it lists is in CISA’s Known Exploited Vulnerabilities.
Normalised, from the vendor’s rating or else the worst CVSS. null
means nobody rated it, which is not the same as harmless.
Examplegenerated
{ "advisories": [ { "cves": [ "example" ], "external_id": "example", "first_seen_at": "2026-04-15T12:00:00Z", "fixable_hosts": 1, "hosts": 1, "id": "example", "known_exploited": true, "severity": "example", "source": "example", "title": "example", "url": "example" } ], "total": 1}A filter that cannot be honoured.
object
Examplegenerated
{ "detail": "example", "status": 1, "title": "example", "type": "example"}No session.
object
Examplegenerated
{ "detail": "example", "status": 1, "title": "example", "type": "example"}Not permitted.
object
Examplegenerated
{ "detail": "example", "status": 1, "title": "example", "type": "example"}No such organization, or not yours.
object
Examplegenerated
{ "detail": "example", "status": 1, "title": "example", "type": "example"}Over the organization’s request limit. Retry-After says when to try again; RateLimit-Limit is the burst.
object
Examplegenerated
{ "detail": "example", "status": 1, "title": "example", "type": "example"}